OPNsense Forum

English Forums => Web Proxy Filtering and Caching => Topic started by: XabiX on November 23, 2021, 09:25:19 am

Title: Firewall rule blocking some outgoing traffic to 443
Post by: XabiX on November 23, 2021, 09:25:19 am
Hello,

I have some outgoing traffic be block from my LAN called POP to my Internet called WAN. I can't understand why sometimes it's OK and why sometimes it's blocked.

Any idea? Is it based on the tcpflags or out of band packet? Is it anything to be worried about or it s normal if the client is not well developped?

Thanks
XabiX
Title: Re: Firewall rule blocking some outgoing traffic to 443
Post by: kd.gundermann on May 23, 2022, 01:18:09 pm
I am new to OPNsense and try to install our first system
and I  am seeing the same behaviour. I've found a short notice in one thread that this may be related to the tcpflags. https://forum.opnsense.org/index.php?topic=28173.msg136933#msg136933 (https://forum.opnsense.org/index.php?topic=28173.msg136933#msg136933)
But I wonder why we are seeing so many packets with tcpflags: PA
as we have really simple setup:  Guest WLAN -> OPNsense  -> Telekom DeutschlandLAN
with an allow ALL rule in the firewall